Bug 1800847
Summary: | Octavia controller services fail to load CA certificate | ||
---|---|---|---|
Product: | Red Hat OpenStack | Reporter: | Carlos Goncalves <cgoncalves> |
Component: | openstack-tripleo-common | Assignee: | Carlos Goncalves <cgoncalves> |
Status: | CLOSED ERRATA | QA Contact: | Gregory Thiemonge <gthiemon> |
Severity: | urgent | Docs Contact: | |
Priority: | urgent | ||
Version: | 13.0 (Queens) | CC: | jschluet, mburns, mburrows, slinaber |
Target Milestone: | z11 | Keywords: | AutomationBlocker, Triaged, ZStream |
Target Release: | 13.0 (Queens) | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | openstack-tripleo-common-8.7.1-11.el7ost | Doc Type: | No Doc Update |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2020-03-10 11:24:20 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 1688323, 1755683, 1756474, 1759254 |
Description
Carlos Goncalves
2020-02-08 10:51:45 UTC
Waiting for openstack-tripleo-common-8.7.1-11.el7ost to be part of the osp13's passed_phase1 puddle. For now the package in the passed_phase1 puddle is openstack-tripleo-common-8.7.1-8.el7ost.noarch.rpm, as seen in: http://download.eng.bos.redhat.com/rcm-guest/puddles/OpenStack/13.0-RHEL-7/2020-02-10.8/RH7-RHOS-13.0/source/ Using OSP 13 2020-02-14.1 Verified in controller logs that certificates can be read, then the load balancer is marked as "ACTIVE". octavia worker logs: 2020-02-14 16:19:19.268 25 INFO octavia.controller.queue.endpoint [-] Creating load balancer 'f96147ed-eaa1-4168-9b16-fe250544d455'... 2020-02-14 16:19:19.874 25 INFO octavia.controller.worker.tasks.database_tasks [-] Created Amphora in DB with id e4495060-d330-486d-ad5d-237f9318d015 2020-02-14 16:19:19.950 25 INFO octavia.certificates.generator.local [-] Signing a certificate request using OpenSSL locally. 2020-02-14 16:19:19.950 25 INFO octavia.certificates.generator.local [-] Using CA Certificate from config. 2020-02-14 16:19:19.951 25 INFO octavia.certificates.generator.local [-] Using CA Private Key from config. 2020-02-14 16:19:19.951 25 INFO octavia.certificates.generator.local [-] Using CA Private Key Passphrase from config. 2020-02-14 16:20:05.335 25 WARNING octavia.amphorae.drivers.haproxy.rest_api_driver [-] Could not connect to instance. Retrying.: ConnectionError: HTTPSConnectionPool(host='172.24.0.7', port= 9443): Max retries exceeded with url: /0.5/info (Caused by NewConnectionError('<requests.packages.urllib3.connection.VerifiedHTTPSConnection object at 0x7f9723232750>: Failed to establish a n ew connection: [Errno 113] No route to host',)) [...] 2020-02-14 16:20:44.554 25 INFO octavia.controller.worker.tasks.database_tasks [-] Mark ALLOCATED in DB for amphora: e4495060-d330-486d-ad5d-237f9318d015 with compute id 8e5d278d-f449-4cde-b4 20-5f9a9d774727 for load balancer: f96147ed-eaa1-4168-9b16-fe250544d455 2020-02-14 16:20:46.156 25 INFO octavia.network.drivers.neutron.allowed_address_pairs [-] Port e77a0e2b-e84f-4aa3-b75d-095fbe9e6f0a already exists. Nothing to be done. 2020-02-14 16:20:58.914 25 INFO octavia.controller.worker.tasks.database_tasks [-] Mark ACTIVE in DB for load balancer id: f96147ed-eaa1-4168-9b16-fe250544d455 Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2020:0760 |